Skip to main content
See every side of every news story
Published loading...Updated

ChatGPT Atlas Is Already Facing Scams and Jailbreaks — Here’s How to Stay Safe While Using the AI Browser

OpenAI cautions that prompt injection attacks in ChatGPT Atlas could expose sensitive data or enable harmful actions despite implemented safety measures, experts say risks persist.

  • On Tuesday, OpenAI launched ChatGPT Atlas as an AI browser to execute web tasks, while cybersecurity experts warned prompt injections could exploit the assistant to expose user data.
  • Security researchers say the integration layer between browsing and AI creates a novel attack surface, as AI browsers can confuse trusted user instructions with untrusted webpage text and features like agent mode, browser memories, and password keychains increase risk.
  • A user demonstrated clipboard injection that overwrites clipboards and redirects to phishing sites, while researchers showed attackers hide commands in white text, machine code, or images; similar flaws affected Comet.
  • Dane Stuckey, OpenAI Chief Information Security Officer, wrote that the company is researching and mitigating prompt-injection risks and has deployed red-teaming, model training, logged out mode, and Watch Mode.
  • Amid competition from Google, Microsoft and newcomers like Perplexity, security experts warn prompt injection remains an evolving problem and less technically literate users face high privacy risks.
Insights by Ground AI

18 Articles

Lean Right

ChatGPT Atlas, of OpenAI, is already raising serious privacy concerns. It is programmed to keep browsing information in your memory. In tests, a technology has discovered that IA does not filter...

·Portugal
Read Full Article

OpenAI has launched its own browser, Atlas, which has both ChatGPT and AI agents built in. But there are also serious risks in letting a chatbot do all sorts of things on your behalf, the warning says.

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 60% of the sources are Center
60% Center

Factuality 

To view factuality data please Upgrade to Premium

Ownership

To view ownership data please Upgrade to Vantage

01net broke the news in on Thursday, October 23, 2025.
Sources are mostly out of (0)
News
For You
Search
BlindspotLocal